Windows Safety Master Removal Guide

Windows Safety Master from the FakeVimes family is a fake security program classified as rogueware which pretends to be a legitimate security program and claims that malware has been detected on your computer and displays false scan results, fake security alerts, and does not allow you to run any application on your computer. When the fake scan is finished, you will be prompted to buy Windows Safety Master to clean your computer and the infections that have been found.

The Windows Safety Master rogueware is distributed through compromised web sites that exploit vulnerabilities on your computer like Java and through fake online scanners that state you are infected and then prompt you to install the Windows Safety Master to scan your computer for the precense of malware.

When you try to start a security program like a malwarescanner on your computer, Windows Safety Master will automatically close it and will state that the program is infected. If your computer is infected with Windows Safety Master, then you are seeing the following screens and msessages, follow the guide below to remove the Windows Safety Master rogueware from your your computer with free software.

Windows Safety Master Removal Guide

Windows Safety Master Removal Guide

All tools used in our Windows Safety Master Removal Guide are completely free to use and should remove any trace of malware from your computer.

Please be aware that removing Malware is not so simple, and we strongly recommend to backup your personal files and folders before you start the malware removal process.

Run Rkill to terminate the malicious processes of Windows Safety Master

When you see the following message Rkill has terminated successfully the malsicious processes.

You should now be able to run your normal security programs so that you can scan for computer infections.

Do not reboot the computer after using Rkill

2. If Rkill doesn’t work restart the computer in safe mode

Start your computer in Safe Mode with Networking and scan for malware with Malwarebytes Anti-Malware.

Remove all CDs, and DVDs from your computer, and then restart your computer.

Press and hold the F8 key as your computer restarts.Please keep in mind that you need to press the F8 key before the Windows start-up logo appears.Note: With some computers, if you press and hold a key as the computer is booting you will get a stuck key message. If this occurs, instead of pressing and holding the “F8 key”, tap the “F8 key” continuously until you get the Advanced Boot Options screen.

On the Advanced Boot Options screen, use the arrow keys to highlight Safe Mode with Networking , and then press ENTER.

You can also use Safe Mode with commandprompt, type after the prompt Explorer.exe and then press ENTER.

If your computer has started in Safe Mode with Networking, you’ll need to perform a system scan with Malwarebytes Anti-Malware

3. Remove Windows Safety Master with Malwarebytes Anti-Malware

Double-click mbam-setup.exe and follow the prompts to install the program.

At the end, be sure a checkmark is placed next to Update Malwarebytes’ Anti-Malware and Launch Malwarebytes’ Anti-Malware

Then click Finish.

If an update is found, it will download and install the latest version.

Once the program has loaded, select Perform full scan, then click Scan.

When the scan is complete, click OK, then Show Results to view the results.

Be sure that everything is Checked (ticked) except items in the C:\System Volume Information folder and click on Remove Selected.

You can use the right mousbutton to check the ‘Check all items‘ option before you click on Remove Selected

If you accidently close it, the log file is saved here and will be named like this: C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes’ Anti-Malware\Logs\mbam-log-date (time).txt

Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.

Click OK to either and let MBAM proceed with the disinfection process.

If asked to restart the computer, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.

After the restart in Normal mode, start Malwarebytes Anti-Malware again and perform a Quick scan to verify that there are no remaining threats.

Open the Malwarebytes Chameleon folder and double-click on svchost.exe.

If Malwarebytes Chameleon will not start, double-click on the other renamed files until you find one that wil start the Windows commandprompt.

Follow the onscreen instructions to press a key to continue and Chameleon will proceed to download and install Malwarebytes Anti-Malware for you.

Once it has done this, it will update Malwarebytes Anti-Malware, and you’ll need to click OK when it says that the database was updated successfully.

Malwarebytes Anti-Malware will now attempt to kill all the malicious processes.

Please be patient, this process can take up to 10 minutes to complete.

Next, Malwarebytes Anti-Malware will automatically open and perform a Quick scan.

When the scan is complete, click OK, then Show Results to view the results.

Be sure that everything is Checked (ticked) except items in the C:\System Volume Information folder and click on Remove Selected.

If you accidently close it, the log file is saved here and will be named like this: C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes’ Anti-Malware\Logs\mbam-log-date (time).txt

Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.

Click OK to either and let MBAM proceed with the disinfection process.

If asked to restart the computer, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.

After the restart in Normal mode, start Malwarebytes Anti-Malware again and perform a Full System scan to verify that there are no remaining threats.

5. Remove Windows Safety Master with HitmanPro

Double click on HitmanPro to start the program, if you are experiencing problems while trying to start HitmanPro, you can use the Force Breach mode.

To start HitmanPro in Force Breach mode, hold down the left CTRL-key when you double click on HitmanPro and all non-essential processes will be terminated, including the malware processes.

HitmanPro will start and you’ll need to follow the prompts (by clicking on the Next button) to start a system scan with this program.

The program will start to scan the computer. The scan will typically take no more than 2-3 minutes.

Click on the next button and choose the option activate free license

Click on the next button and the infections where will be deleted.

Click on the next button and restart the computer.

6. Information

Some of the programs that we used in our malware removal guides would be a good idea to keep and used often in helping to keep the computer clean. Malwarebytes Anti-Malware is one of the most powerful anti-malware tools. It is totally free but for real-time protection you will have to pay a small one-time fee. The license of Malwarebytes Anti-Malware is life-time so you have to buy it once, and because Malwarebytes Anti-Malware is a great addition to your regular virusscanner of security programs.